A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the function formSetSchedLed of the file /goform/SetLEDCfg. The manipulation of the argument Time leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Fri, 15 Aug 2025 08:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in Tenda AC7 and AC18 15.03.05.19/15.03.06.44. Affected is the function formSetSchedLed of the file /goform/SetLEDCfg. The manipulation of the argument Time leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | Tenda AC7/AC18 SetLEDCfg formSetSchedLed buffer overflow | |
Weaknesses | CWE-119 CWE-120 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-15T08:32:07.431Z
Updated: 2025-08-15T08:32:07.431Z
Reserved: 2025-08-14T07:07:03.862Z
Link: CVE-2025-9023

No data.

Status : Awaiting Analysis
Published: 2025-08-15T09:15:31.730
Modified: 2025-08-15T13:12:51.217
Link: CVE-2025-9023

No data.